Group Properties, General Tab

The General tab of the group properties window displays general properties of the group record.
cminder12901
The General tab of the group properties window displays general properties of the group record.
This tab contains the following fields:
  • Group Name
    Defines the name of the group.
  • Full Name
    Defines the full name that is associated with the accessor. CA Privileged Identity Manager uses the full name to identify the accessor
     
    in audit log messages, but not for authorization.
    Limit:
     47 alphanumeric characters
  • Description
    Defines additional information that you want to include in the record. CA Privileged Identity Manager does not use this information for authorization.
    Limit:
     255 characters
  • Owner
    Defines the owner of a record.
  • Super Group
    Defines the name of the parent group.
  • Group Types
    Specifies global authorization attributes for members of the group. Each global authorization attribute permits members of the group to perform certain types of functions. A group can have one or more of the following global authorization attributes:
    Verify that you do not assign the ADMIN attribute to groups and users that you do not want to grant administrative privileges to.
    • Administrator
      Specifies that members of the group can perform administrative functions, similar to a native superuser.
    • Auditor
      Specifies that members of the group can monitor the system, list information in the database, and can set the audit mode for existing records.
    • Operator
      Specifies that members of the group can list everything in the database and can use the secons utility.
    • Password Manager
      Specifies that members of the group can modify the password settings of other users. And, can enable a user account that the serevu utility disables.
    • Server
      Specifies that a process can ask members of the group for authorization and can issue the SEOSROUTE_VerifyCreate API call.